PulseAugur
EN
LIVE 23:20:32

IronWorm malware infects 36 npm packages in supply-chain attack

A new Rust-based infostealer malware, dubbed IronWorm, has compromised 36 packages within the npm supply chain. This malware is designed to steal 86 environment variables, posing a significant threat to developers and their projects. The discovery highlights ongoing vulnerabilities in software supply chains. AI

RANK_REASON This is a report of a specific malware incident affecting a software package repository, which falls under tooling and security.

Read on Mastodon — fosstodon.org →

AI-generated summary · Google Gemini · from 2 sources. How we write summaries →

IronWorm malware infects 36 npm packages in supply-chain attack

COVERAGE [2]

  1. Mastodon — fosstodon.org TIER_1 English(EN) · [email protected] ·

    📰 New IronWorm Malware Hits 36 Packages In npm Supply-Chain Attack A new npm supply-chain attack has infected 36 packages with Rust-based infostealer malware ca

    📰 New IronWorm Malware Hits 36 Packages In npm Supply-Chain Attack A new npm supply-chain attack has infected 36 packages with Rust-based infostealer malware called IronWorm. According to BleepingComputer, the malware "targets 86 environment variables (key-value p... 📰 Source: Sl…

  2. Mastodon — fosstodon.org TIER_1 English(EN) · [email protected] ·

    🎮 What time does Summer Game Fest start and how to watch SGF 2026? What time is Summer Game Fest? Our guide to SGF 2026 streams and start times explain how to w

    🎮 What time does Summer Game Fest start and how to watch SGF 2026? What time is Summer Game Fest? Our guide to SGF 2026 streams and start times explain how to watch this week's game announcements. 📰 Source: Polygon.com 🔗 Link: https://www.polygon.com/summer-game-fest-2026-start-t…